[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"doc-detail-81510-en":3,"doc-seo-81510-105":29,"detail-sidebar-cat-0-en-105":91},{"code":4,"msg":5,"data":6},0,"success",{"doc_id":7,"user_id":8,"nickname":9,"user_avatar":10,"doc_module":4,"category_id":11,"category_name":12,"doc_title":13,"doc_description":14,"doc_content":15,"file_id":16,"file_url":17,"file_type":18,"file_size":19,"view_count":20,"is_deleted":4,"is_public":20,"is_downloadable":20,"audit_status":20,"page_count":21,"language":22,"language_code":23,"site_id":24,"html_lang":23,"table_of_contents":25,"faqs":26,"seo_title":13,"seo_description":14,"update_tm":27,"read_time":28},81510,1099513958762,"Logic","https://ap-avatar.wpscdn.com/avatar/1000023916a998db790?x-image-process=image/resize,m_fixed,w_180,h_180&k=1784791008015729253",8,"Research & Report","JustAct: A Framework for Auditable Multi-Agent Systems Regulated by Inter-Organisational Policies","Open multi-agent systems operating across organizational boundaries require actions to be regulated by complex, context-dependent policies. The document focuses on distributed implementations where actors must justify permitted actions using policy information drawn from dynamic statements and agreements. It introduces the JustAct framework, proves key auditability properties, and shows that any permission decision cannot be refuted later after new statements or updated agreements. It further specifies and implements a concrete policy language and runtime, evaluating them through a medical data case study inspired by Brane.","arXiv :2502 .00 138v 3 [ cs .LO] 9 Jul 2026  \nJUSTACT: A FRAMEWORK FOR AUDITABLE MULTI-AGENT SYSTEMS REGULATED BY INTER-ORGANISATIONAL POLICIES ∗  \nCHRISTOPHER A. ESTERHUYSE  a , TIM MÜLLER  a , AND L. THOMAS VAN BINSBERGEN  a  \nInformatics Institute, University of Amsterdam, Amsterdam, The Netherlands  \ne-mail address: [c.a.esterhuyse@uva.nl](c.a.esterhuyse@uva.nl), [t.muller@uva.nl](t.muller@uva.nl), [ltvanbinsbergen@acm.org](ltvanbinsbergen@acm.org)  \nAbstract .  \nIn open multi-agent agent systems that cross organisational boundaries, agent actions must be regulated by complex policies. Consider medical data processing systems, which must observe generic laws (e.g., EU data protection regulations) and also specific participants’ resource conditions (e.g., Bob consents to sharing his X-Rays with EU hospitals) . Presently, we address the implementation of these systems as distributed software. Solutions to key sub-problems are available: existing policy languages capture the necessary normative concepts and formalise the computational representation and reasoning about policies, and existing distributed algorithms and protocols coordinate agents’ changing actions and policies. But which policies and protocols are useful in application?  \nWith the JustAct framework, we characterise a class of multi-agent systems where actors justify their actions with sufficient policy information collected from dynamic policy statements and agreements. We prove key properties of these systems, e.g. , any decision that an action is permitted now cannot be refuted later, regardless of any added statements or updated agreements. We study a particular instance of the framework by specifying (in Rocq) and implementing (in Rust) a particular policy language and runtime system for mediating agent communications. We demonstrate and assess JustAct via a case study of this implementation: we reproduce the usage scenarios of Brane, an existing policy-regulated, inter-domain, medical data processing system.  \n1. Introduction  \nIn this article, we consider multi-agent software systems that are open (i.e., agents may join and leave at runtime) and subject to regulation by policies: specifications of how agents are permitted to act. These systems are needed in practice whenever software systems cross organisational boundaries, as physical distance separates institutional entities from the users or software components that they aim to control. Such users, components, and entities as unified in agents able to act, and their dependencies are captured as policies. For example, to enable medical research on the rare DIPG disease, hospitals must share their medical records. But, to maintain control, participants are required to accept the data  \nKey words and phrases: Decentralised, Framework, Composition, Coordination, Multi-agent System, Policy, Program Refinement, Specification.  \n∗ This article is a significantly extended version of [EMvB24] . We define the same framework more precisely and extensively. The prior implementation discussion is replaced: we present our new Rust implementation and Rocq formalisation of our framework, policy language, its interpreter, and runtime system. The prior case study is replaced by a new more extensive one: recreating the brane medical data processing system.  \nPreprint submitted to  \nLogical Methods in Computer Science  \n© C. A. Esterhuyse, T. Müller, and L. T. van Binsbergen ⃝CC Creative Commons  \nsharing agreement of the DIPG registry ecosystem [VvZBC+17] . In general, participants rely on the enforcement the policy, which aligns agents’ actions with what is permitted. For example, auditor agents trigger compensatory actions to punish actors of prohibited actions after the fact, or automated monitors prevent prohibited actions just in time. The terms in which policies define permission are dependent on the case. For example, when agents’ access to data is modelled as instantaneous events, policies are formulated in term","cbCaidmsBtEVCqQx","https://ap.wps.com/l/cbCaidmsBtEVCqQx","pdf",3198388,1,57,"English","en",105,"# Introduction\n## Policy-regulated open multi-agent systems\n## Challenges in incomplete policy knowledge\n# Key contributions of the JustAct framework\n## Auditability properties\n## Implementation and case study","[{\"question\":\"What does the JustAct framework aim to solve in open multi-agent systems?\",\"answer\":\"It addresses how to implement multi-agent systems where actors must justify their actions using sufficient policy information gathered from dynamic statements and agreements, ensuring auditability under regulation across organizational boundaries.\"},{\"question\":\"What core property is proven about permitted actions in JustAct?\",\"answer\":\"Any decision that an action is permitted now cannot be refuted later, regardless of added statements or updated agreements.\"},{\"question\":\"How is JustAct evaluated in the document?\",\"answer\":\"The framework is instantiated by specifying a policy language and implementing a runtime system for mediating agent communications, then assessed via a case study that reproduces scenarios of an existing policy-regulated inter-domain medical data processing system (inspired by Brane).\"}]",1784173897,144,{"code":4,"msg":30,"data":31},"ok",{"site_id":24,"language":23,"slug":32,"title":13,"keywords":33,"description":14,"schema_data":34,"social_meta":86,"head_meta":88,"extra_data":90,"updated_unix":27},"justact-a-framework-for-auditable-multi-agent-systems-regulated-by-inter-organisational-policies","",{"@graph":35,"@context":85},[36,53,68],{"@type":37,"itemListElement":38},"BreadcrumbList",[39,43,47,50],{"item":40,"name":41,"@type":42,"position":20},"https://docshare.wps.com","Home","ListItem",{"item":44,"name":45,"@type":42,"position":46},"https://docshare.wps.com/document/","Document",2,{"item":48,"name":12,"@type":42,"position":49},"https://docshare.wps.com/document/research-report/",3,{"item":51,"name":13,"@type":42,"position":52},"https://docshare.wps.com/document/justact-a-framework-for-auditable-multi-agent-systems-regulated-by-inter-organisational-policies/81510/",4,{"url":51,"name":13,"@type":54,"author":55,"headline":13,"publisher":57,"fileFormat":60,"inLanguage":23,"description":14,"dateModified":61,"datePublished":62,"encodingFormat":60,"isAccessibleForFree":63,"interactionStatistic":64},"DigitalDocument",{"name":9,"@type":56},"Person",{"url":40,"name":58,"@type":59},"DocShare","Organization","application/pdf","2026-07-21","2026-07-16",true,{"@type":65,"interactionType":66,"userInteractionCount":20},"InteractionCounter",{"@type":67},"ViewAction",{"@type":69,"mainEntity":70},"FAQPage",[71,77,81],{"name":72,"@type":73,"acceptedAnswer":74},"What does the JustAct framework aim to solve in open multi-agent systems?","Question",{"text":75,"@type":76},"It addresses how to implement multi-agent systems where actors must justify their actions using sufficient policy information gathered from dynamic statements and agreements, ensuring auditability under regulation across organizational boundaries.","Answer",{"name":78,"@type":73,"acceptedAnswer":79},"What core property is proven about permitted actions in JustAct?",{"text":80,"@type":76},"Any decision that an action is permitted now cannot be refuted later, regardless of added statements or updated agreements.",{"name":82,"@type":73,"acceptedAnswer":83},"How is JustAct evaluated in the document?",{"text":84,"@type":76},"The framework is instantiated by specifying a policy language and implementing a runtime system for mediating agent communications, then assessed via a case study that reproduces scenarios of an existing policy-regulated inter-domain medical data processing system (inspired by Brane).","https://schema.org",{"og:url":51,"og:type":87,"og:title":13,"og:site_name":58,"og:description":14},"article",{"robots":89,"canonical":51},"index,follow",{"doc_id":7,"site_id":24},{"code":4,"msg":5,"data":92},[93,97,101,105,110,115,120,123,128,131,135],{"id":20,"doc_module":4,"doc_module_name":45,"category_name":94,"show_sort_weight":95,"slug":96},"Story & Novel",90,"story-novel",{"id":46,"doc_module":4,"doc_module_name":45,"category_name":98,"show_sort_weight":99,"slug":100},"Literature",80,"literature",{"id":52,"doc_module":4,"doc_module_name":45,"category_name":102,"show_sort_weight":103,"slug":104},"Exam",70,"exam",{"id":106,"doc_module":4,"doc_module_name":45,"category_name":107,"show_sort_weight":108,"slug":109},5,"Comic",60,"comic",{"id":111,"doc_module":4,"doc_module_name":45,"category_name":112,"show_sort_weight":113,"slug":114},6,"Technology",50,"technology",{"id":116,"doc_module":4,"doc_module_name":45,"category_name":117,"show_sort_weight":118,"slug":119},7,"Healthcare",40,"healthcare",{"id":11,"doc_module":4,"doc_module_name":45,"category_name":12,"show_sort_weight":121,"slug":122},30,"research-report",{"id":124,"doc_module":4,"doc_module_name":45,"category_name":125,"show_sort_weight":126,"slug":127},9,"Religion & Spirituality",20,"religion-spirituality",{"id":126,"doc_module":4,"doc_module_name":45,"category_name":129,"show_sort_weight":126,"slug":130},"World Cup","world-cup",{"id":132,"doc_module":4,"doc_module_name":45,"category_name":133,"show_sort_weight":132,"slug":134},10,"Lifestyle","lifestyle",{"id":136,"doc_module":4,"doc_module_name":45,"category_name":137,"show_sort_weight":106,"slug":138},19,"General","general"]